MandateMind Trust Center

Transparency around availability, security, data handling, AI processing, and reliability for teams who depend on MandateMind for audit‑grade work.

🟢 Current Status

All systems operational.

App API Evidence Processing

Uptime & Reliability

MandateMind is engineered for continuous availability. As production usage grows, this page will publish real‑time uptime metrics, incident history, and maintenance logs.

📈 Uptime Commitment

Target uptime: 99.9% monthly. Redundant services, automated scaling, and continuous health checks ensure predictable performance.

📘 Incident History

No incidents reported to date. Future incidents will be documented with root cause, impact analysis, and remediation steps.

🛠 Maintenance Windows

Planned maintenance will be announced in advance and scheduled during low‑impact hours.

Transparency & Data Handling

MandateMind is built for organizations where evidence, mandates, and controls must be handled with precision and confidentiality. Our data handling practices are designed to meet the expectations of CISOs, auditors, and enterprise buyers.

🌍 Data Residency

Customer data is hosted in secure, reputable cloud regions with strong compliance baselines, redundancy, and strict access controls.

🤝 Subprocessors

MandateMind uses a minimal set of infrastructure subprocessors (cloud hosting, email delivery, secure AI inference). A full list will be published and maintained here for transparency.

🛡 Responsible Disclosure

We welcome responsible vulnerability reports and are committed to timely remediation and transparent communication.

AI Safety & Evidence Protection

MandateMind uses AI to summarize evidence, detect gaps, and generate readiness insights — without compromising privacy or security. AI is an assistant to your compliance program, not a risk to your evidence.

🧠 No Training on Customer Data

Your evidence is never used to train shared AI models. Customer data is not incorporated into foundation models or reused outside your tenant.

🔒 Secure AI Processing

Evidence is processed in isolated, access‑controlled environments. AI inference is performed using secure pipelines — evidence is never sent to public LLM endpoints.

📁 Optional Redaction

Customers may redact sensitive fields before AI processing to further control exposure.

📊 Transparent Outputs

AI summaries include source references and confidence indicators for auditability and verification.

AI Processing, Isolation & Model Providers

MandateMind uses AI models to interpret evidence and generate compliance insights, but all processing is performed under strict isolation and non‑sharing guarantees. Customer evidence is never exposed publicly, never shared with model providers, and never used to train external AI models.

🔒 No External Model Training

Customer evidence is never used to train OpenAI models or any third‑party AI systems. Model providers do not retain, store, or learn from MandateMind customer data.

🧠 Secure, Tenant‑Segregated AI Execution

All AI processing occurs inside secure, tenant‑segregated environments. Evidence is encrypted in transit and at rest before, during, and after AI operations.

🚫 No Public LLM Endpoints

Evidence is never sent to public LLM endpoints. MandateMind maintains full control over how evidence is processed and ensures that no external party can access customer data.

📘 Subprocessor Transparency

MandateMind uses a minimal set of subprocessors for infrastructure and secure AI inference. A public list will be maintained and updated here.

Evidence Retention & Fair‑Use Transparency

MandateMind balances performance, cost efficiency, and compliance needs through clear retention and fair‑use policies. These controls ensure predictable behavior for audit‑grade workloads.

🗄 Evidence Retention

Evidence may be automatically archived or deleted based on retention settings. Extended retention or cold storage may be available based on plan tier.

⚖️ Fair‑Use AI Processing

All plans include fair‑use AI processing limits to ensure platform stability. Excessive usage may trigger soft warnings, rate‑limiting, or overage billing.

💾 Storage Quotas

Evidence storage is subject to fair‑use quotas based on plan tier. Customers may upgrade or purchase additional storage if needed.

🔍 Tenant Isolation

Evidence, AI outputs, and metadata are isolated per tenant. MSP/vCISO multi‑tenant environments maintain strict client‑by‑client separation.

Platform Updates & Changelog

MandateMind publishes periodic updates covering new features, reliability improvements, and security enhancements across the platform.

📅 Latest Updates

Security & Compliance Details

For encryption, access controls, audit logging, and our compliance roadmap, visit the Security page.

View Security Overview